GHSA-5469-c5p2-xv5g
CRITICALCVE-2022-34113An issue in the component /api/plugin/upload of Dataease v1.11.1 allows attackers to execute arbitrary code via a crafted plugin. Version 1.11.2 contains a patch for the problem.
- Affected
- <= 1.11.1
- Fixed in
- 1.11.2
- Weakness
- CWE-94
- Published
- 2022-07-23
- Source
- github